Is There a Private, Encrypted Grow Journal App?
Yes. GrowScope encrypts every grow diary end-to-end, for every account — not a checkbox buried in Settings that most people never find, but the default state of the app. What that means in practice, and the one trade-off it comes with, is worth understanding rather than taking on faith.
What 'end-to-end' actually means here
Your plants, logs, notes, and saved AI history are encrypted on your own device before any of it is sent anywhere. The server only ever receives and stores the already-encrypted bytes — it doesn't hold a key that could turn them back into readable text. That's the practical difference between 'we promise not to look' and 'we structurally can't': one is a policy, the other is math, and only one of them survives a subpoena, a breach, or a curious employee.
The one thing you have to do: save a recovery phrase
The first time your diary is encrypted, the app generates a 12-word recovery phrase on your device and shows it to you once, with a short confirmation step before you can continue. That phrase is what your encryption key is built from. Nobody can skip this step, because it's the only moment anyone gets to actually write the phrase down — after that, the app never shows it again, and the server never receives it either.
The honest trade-off: nobody can help you if you lose it
This is the part worth saying plainly instead of burying in fine print: if you lose that recovery phrase and every device that already has your key saved on it, that diary is gone — not locked, not recoverable by support, gone. That sounds harsh, but it's the direct, unavoidable cost of encryption that actually works this way. The alternative — a company that can reset or recover your data for you — means that company is holding a key capable of reading it, which is exactly the thing end-to-end encryption exists to avoid. Write the phrase down on paper and keep it somewhere you'd keep a house key, not a screenshot in your camera roll.
How this works with AI features
Encryption covers your stored diary, always — it deliberately does not extend to AI features, and that's worth stating precisely rather than glossing over. Every AI-credit-gated feature (photo diagnosis, the fertilizer advisor, card art, and the rest) works the same way: tapping that specific action decrypts only the data it needs on your device, sends it once to GrowScope's server, which forwards it to a third-party model provider — Anthropic Claude or, via OpenRouter, Google Gemini — to generate that one response, then doesn't keep it. Running AI entirely on-device (so nothing left your device for that either) was considered and rejected: the tasks these features do — fertilizer-dose math, trichome/pest image reading, matching plants across a comparison — are exactly where small on-device models fall short, and these are paid features priced for real model quality. That's a disclosed, per-action trade-off you trigger yourself, not a background hole in the promise above.
How GrowScope helps
This isn't a separate premium feature to hunt for — every account, new or existing, goes through the encryption setup automatically the next time the app is opened. A full technical breakdown of the key hierarchy is in the Encryption documentation, for anyone who wants to verify the claim rather than take it on trust.
Key takeaway
GrowScope encrypts every grow diary end-to-end by default — the server only ever stores encrypted bytes, and the recovery phrase shown once at setup is the only way back in if you lose your device, which is the honest cost of the server genuinely not being able to read your data.